⚠️ What are the most common #MITRE techniques observed in #MalwareAttacks? In our latest blog, Omri Matsa, #CyberThreatIntelligence Analyst seeks to take a focused snapshot of the malware-related threat landscape from January to July 2022. Read more: ➡️ https://t.co/KdWM1fyino
@_k00s#log4j Mitigation good/better/best
Good: block outbound LDAP & RMI ports
Better: block outbound LDAP & RMI protocols (regardless of port)
Best: block all outbound traffic
Reminder: orgs have 3rd party software that may not have patch for months & will be vulnerable for a while
I wrote a blog post that includes a cheeky little cheat sheet that highlights DNS record types, observations, & potential indications that I hope folks find useful.
I also covers some foundational information on DNS so you can be the "authority" on DNS 😀
https://t.co/IYdua5mUzz
Thank you so much, @Orelpery, for being a guest speaker at our #ekoTechTalks program and teaching us about all the fun stuff, legal or otherwise, we can buy or do on the #DarkWeb!
What’s 9.3 miles (15 km)?
163 football fields
46 Eiffel Towers
34 Empire State Buildings
18 Burj Khalifas
Nearly 2 Mt. Everests
Our fighter jets neutralized 9.3 miles of the Hamas 'Metro' terror tunnel system overnight.
That's 9.3 miles that can no longer be used for terror.
idk why I havent thought of this before, but its very easy to hide those "external sender" warnings that get appended to your emails during phishing campaigns 🤔. Email gateways/FW just add HTML at the start/end of emails, simply add CSS to hide it! #RedTeam
See images: